summaryrefslogtreecommitdiff
path: root/net/netfilter
AgeCommit message (Expand)Author
2019-03-13ipvs: Fix signed integer overflow when setsockopt timeoutZhangXiaoxu
2019-03-13netfilter: nft_compat: destroy function must not have side effectsFlorian Westphal
2019-03-13netfilter: nft_compat: make lists per netnsFlorian Westphal
2019-03-13netfilter: nft_compat: use refcnt_t type for nft_xt reference countFlorian Westphal
2019-02-27netfilter: nfnetlink_osf: add missing fmatch checkFernando Fernandez Mancera
2019-02-27netfilter: nft_compat: use-after-free when deleting targetsPablo Neira Ayuso
2019-02-27netfilter: nf_tables: fix flush after rule deletion in the same batchPablo Neira Ayuso
2019-02-27netfilter: nft_flow_offload: fix checking method of conntrack helperHenry Yen
2019-02-27netfilter: nft_flow_offload: fix interaction with vrf slave devicewenxu
2019-02-27netfilter: nft_flow_offload: Fix reverse route lookupwenxu
2019-02-27netfilter: nf_tables: fix leaking object reference countTaehee Yoo
2019-01-26netfilter: ipset: Allow matching on destination MAC address for mac and ipmac...Stefano Brivio
2019-01-22netfilter: nf_conncount: fix argument order to find_next_bitFlorian Westphal
2019-01-22netfilter: nf_conncount: speculative garbage collection on empty listsPablo Neira Ayuso
2019-01-22netfilter: nf_conncount: move all list iterations under spinlockPablo Neira Ayuso
2019-01-22netfilter: nf_conncount: merge lookup and add functionsFlorian Westphal
2019-01-22netfilter: nf_conncount: restart search when nodes have been erasedFlorian Westphal
2019-01-22netfilter: nf_conncount: split gc in two phasesFlorian Westphal
2019-01-22netfilter: nf_conncount: don't skip eviction when age is negativeFlorian Westphal
2019-01-22netfilter: nf_conncount: replace CONNCOUNT_LOCK_SLOTS with CONNCOUNT_SLOTSShawn Bohrer
2018-12-13netfilter: nf_conncount: use rb_link_node_rcu() instead of rb_link_node()Taehee Yoo
2018-12-13netfilter: nat: can't use dst_hold on noref dstFlorian Westphal
2018-12-13netfilter: ipset: do not call ipset_nest_end after nla_nest_cancelPan Bian
2018-12-07netfilter: seqadj: re-load tcp header pointer after possible head reallocationFlorian Westphal
2018-12-04netfilter: nf_tables: fix suspicious RCU usage in nft_chain_stats_replace()Taehee Yoo
2018-11-28netfilter: nf_tables: deactivate expressions in rule replecement routineTaehee Yoo
2018-11-27netfilter: nf_conncount: remove wrong condition check routineTaehee Yoo
2018-11-27netfilter: add missing error handling code for register functionsTaehee Yoo
2018-11-26netfilter: nfnetlink_cttimeout: fetch timeouts for udplite and gre, tooFlorian Westphal
2018-11-26ipvs: call ip_vs_dst_notifier earlier than ipv6_dev_notfXin Long
2018-11-17netfilter: xt_hashlimit: fix a possible memory leak in htable_create()Taehee Yoo
2018-11-13netfilter: nf_tables: fix use-after-free when deleting compat expressionsFlorian Westphal
2018-11-13netfilter: xt_RATEEST: remove netns exit routineTaehee Yoo
2018-11-12netfilter: nf_tables: don't use position attribute on rule replacementFlorian Westphal
2018-11-12netfilter: nf_tables: don't skip inactive chains during updateFlorian Westphal
2018-11-12netfilter: nf_conncount: fix unexpected permanent node of list.Taehee Yoo
2018-11-12netfilter: nf_conncount: fix list_del corruption in conn_freeTaehee Yoo
2018-11-12netfilter: nf_conncount: use spin_lock_bh instead of spin_lockTaehee Yoo
2018-11-06Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netLinus Torvalds
2018-11-03netfilter: conntrack: fix calculation of next bucket number in early_dropVasily Khoruzhick
2018-11-03netfilter: nft_compat: ebtables 'nat' table is normal chain typeFlorian Westphal
2018-11-03netfilter: nfnetlink_cttimeout: pass default timeout policy to obj_to_nlattrPablo Neira Ayuso
2018-11-03netfilter: conntrack: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet()Pablo Neira Ayuso
2018-11-03netfilter: ipset: Fix calling ip_set() macro at dumpingJozsef Kadlecsik
2018-11-03netfilter: xt_IDLETIMER: add sysfs filename checking routineTaehee Yoo
2018-11-01Merge branch 'work.afs' of git://git.kernel.org/pub/scm/linux/kernel/git/viro...Linus Torvalds
2018-11-01netfilter: ipset: fix ip_set_list allocation failureAndrey Ryabinin
2018-11-01netfilter: ipset: actually allow allowable CIDR 0 in hash:net,port,netEric Westbrook
2018-11-01netfilter: ipset: list:set: Decrease refcount synchronously on deletion and r...Stefano Brivio
2018-10-29Revert "netfilter: nft_numgen: add map lookups for numgen random operations"Pablo Neira Ayuso